GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,239
Erlang
31
GitHub Actions
21
Go
2,007
Maven
5,000+
npm
3,716
NuGet
662
pip
3,388
Pub
11
RubyGems
885
Rust
851
Swift
36
Unreviewed advisories
All unreviewed
5,000+
280 advisories
Filter by severity
An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in...
Moderate
Unreviewed
CVE-2018-15856
was published
May 13, 2022
In Bento4 v1.5.1-624, AP4_File::ParseStream in Ap4File.cpp allows remote attackers to cause a...
Moderate
Unreviewed
CVE-2018-14445
was published
May 13, 2022
GNU Libextractor before 1.7 contains an infinite loop vulnerability in...
Moderate
Unreviewed
CVE-2018-14347
was published
May 13, 2022
An issue was discovered in Asterisk Open Source 15.x before 15.4.1. When connected to Asterisk...
Moderate
Unreviewed
CVE-2018-12228
was published
May 13, 2022
An issue was discovered in Xen through 4.10.x allowing x86 HVM guest OS users to cause a denial...
Moderate
Unreviewed
CVE-2018-10981
was published
May 13, 2022
Loop with Unreachable Exit Condition in Jenkins
Moderate
CVE-2018-1000864
was published
for
org.jenkins-ci.main:jenkins-core
(Maven)
May 13, 2022
smbd in Samba before 4.4.10 and 4.5.x before 4.5.6 has a denial of service vulnerability ...
Moderate
Unreviewed
CVE-2017-9461
was published
May 13, 2022
libqpdf.a in QPDF 6.0.0 allows remote attackers to cause a denial of service (infinite recursion...
Moderate
Unreviewed
CVE-2017-9210
was published
May 13, 2022
libqpdf.a in QPDF 6.0.0 allows remote attackers to cause a denial of service (infinite recursion...
Moderate
Unreviewed
CVE-2017-9209
was published
May 13, 2022
libqpdf.a in QPDF 6.0.0 allows remote attackers to cause a denial of service (infinite recursion...
Moderate
Unreviewed
CVE-2017-9208
was published
May 13, 2022
The lzw_add_to_dict function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.1 allows...
Moderate
Unreviewed
CVE-2017-9094
was published
May 13, 2022
The my_skip_input_data_fn function in imagew-jpeg.c in libimageworsener.a in ImageWorsener 1.3.1...
Moderate
Unreviewed
CVE-2017-9093
was published
May 13, 2022
PoDoFo 0.9.5 allows denial of service (infinite recursion and stack consumption) via a crafted...
Moderate
Unreviewed
CVE-2017-8053
was published
May 13, 2022
The function PdfPagesTree::GetPageNodeFromArray in PdfPageTree.cpp:464 in PoDoFo 0.9.5 allows...
Moderate
Unreviewed
CVE-2017-8054
was published
May 13, 2022
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "2 of 9....
Moderate
Unreviewed
CVE-2017-6299
was published
May 13, 2022
The PoDoFo::PdfPage::GetInheritedKeyFromObject function in base/PdfVariant.cpp in PoDoFo 0.9.4...
Moderate
Unreviewed
CVE-2017-5852
was published
May 13, 2022
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10...
Moderate
Unreviewed
CVE-2017-2417
was published
May 13, 2022
The arch_timer_reg_read_stable macro in arch/arm64/include/asm/arch_timer.h in the Linux kernel...
Moderate
Unreviewed
CVE-2017-18261
was published
May 13, 2022
When dynamic memory allocation fails, currently the process sleeps for one second and continues...
Moderate
Unreviewed
CVE-2017-18277
was published
May 13, 2022
An issue was discovered in Exempi before 2.4.4. The TradQT_Manager::ParseCachedBoxes function in...
Moderate
Unreviewed
CVE-2017-18238
was published
May 13, 2022
An issue was discovered in Exempi before 2.4.4. The ASF_Support::ReadHeaderObject function in...
Moderate
Unreviewed
CVE-2017-18236
was published
May 13, 2022
An issue was discovered in QPDF before 7.0.0. There is an infinite loop due to looping xref...
Moderate
Unreviewed
CVE-2017-18186
was published
May 13, 2022
An issue was discovered in QPDF before 7.0.0. There is an infinite loop in the QPDFWriter:...
Moderate
Unreviewed
CVE-2017-18183
was published
May 13, 2022
The madvise_willneed function in mm/madvise.c in the Linux kernel before 4.14.4 allows local...
Moderate
Unreviewed
CVE-2017-18208
was published
May 13, 2022
Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V600R006C00; TE50...
Moderate
Unreviewed
CVE-2017-17131
was published
May 13, 2022
ProTip!
Advisories are also available from the
GraphQL API